oauth2-server/tests/Middleware/ResourceServerMiddlewareTest.php

108 lines
3.5 KiB
PHP
Raw Normal View History

2016-03-10 17:22:48 +00:00
<?php
namespace LeagueTests\Middleware;
2016-03-28 16:42:34 +02:00
use League\OAuth2\Server\CryptKey;
2016-03-10 17:22:48 +00:00
use League\OAuth2\Server\Middleware\ResourceServerMiddleware;
use League\OAuth2\Server\Repositories\AccessTokenRepositoryInterface;
use League\OAuth2\Server\ResourceServer;
2016-04-09 10:46:40 -04:00
use LeagueTests\Stubs\AccessTokenEntity;
use LeagueTests\Stubs\ClientEntity;
2016-03-10 17:22:48 +00:00
use Zend\Diactoros\Response;
use Zend\Diactoros\ServerRequest;
class ResourceServerMiddlewareTest extends \PHPUnit_Framework_TestCase
{
public function testValidResponse()
{
$server = new ResourceServer(
2016-03-10 17:22:48 +00:00
$this->getMock(AccessTokenRepositoryInterface::class),
'file://' . __DIR__ . '/../Stubs/public.key'
2016-03-10 17:22:48 +00:00
);
$client = new ClientEntity();
$client->setIdentifier('clientName');
$accessToken = new AccessTokenEntity();
$accessToken->setIdentifier('test');
$accessToken->setUserIdentifier(123);
$accessToken->setExpiryDateTime((new \DateTime())->add(new \DateInterval('PT1H')));
$accessToken->setClient($client);
2016-03-28 16:42:34 +02:00
$token = $accessToken->convertToJWT(new CryptKey('file://' . __DIR__ . '/../Stubs/private.key'));
2016-03-10 17:22:48 +00:00
$request = new ServerRequest();
$request = $request->withHeader('authorization', sprintf('Bearer %s', $token));
2016-03-10 17:22:48 +00:00
$middleware = new ResourceServerMiddleware($server);
$response = $middleware->__invoke(
$request,
new Response(),
function () {
$this->assertEquals('test', func_get_args()[0]->getAttribute('oauth_access_token_id'));
2016-03-10 12:40:28 -05:00
2016-03-10 17:22:48 +00:00
return func_get_args()[1];
}
);
$this->assertEquals(200, $response->getStatusCode());
}
2016-04-10 15:58:01 +01:00
public function testValidResponseExpiredToken()
{
$server = new ResourceServer(
2016-04-10 15:58:01 +01:00
$this->getMock(AccessTokenRepositoryInterface::class),
'file://' . __DIR__ . '/../Stubs/public.key'
2016-04-10 15:58:01 +01:00
);
$client = new ClientEntity();
$client->setIdentifier('clientName');
$accessToken = new AccessTokenEntity();
$accessToken->setIdentifier('test');
$accessToken->setUserIdentifier(123);
$accessToken->setExpiryDateTime((new \DateTime())->sub(new \DateInterval('PT1H')));
$accessToken->setClient($client);
$token = $accessToken->convertToJWT(new CryptKey('file://' . __DIR__ . '/../Stubs/private.key'));
$request = new ServerRequest();
$request = $request->withHeader('authorization', sprintf('Bearer %s', $token));
$middleware = new ResourceServerMiddleware($server);
$response = $middleware->__invoke(
$request,
new Response(),
function () {
$this->assertEquals('test', func_get_args()[0]->getAttribute('oauth_access_token_id'));
return func_get_args()[1];
}
);
$this->assertEquals(401, $response->getStatusCode());
}
2016-03-10 17:22:48 +00:00
public function testErrorResponse()
{
$server = new ResourceServer(
2016-03-10 17:22:48 +00:00
$this->getMock(AccessTokenRepositoryInterface::class),
'file://' . __DIR__ . '/../Stubs/public.key'
2016-03-10 17:22:48 +00:00
);
$request = new ServerRequest();
$request = $request->withHeader('authorization', '');
$middleware = new ResourceServerMiddleware($server);
$response = $middleware->__invoke(
$request,
new Response(),
function () {
return func_get_args()[1];
}
);
$this->assertEquals(401, $response->getStatusCode());
}
}